3 ms·
EU should have mandated a user-facing authentication scheme using a random string as the only authentication factor for everything. Pretty much like the API tok
by sam_lowry_ 3mo ago
EU should have mandated a user-facing authentication scheme using a random string as the only authentication factor for everything. Pretty much like the API tokens for contemporary enterprise software, except that they would be used by ordinary people and not by application developers.
And complement it with hardware tokens for highly sensitive applications.
Passkeys could have been that, but they were quickly subverted by the industry.
- 71bw 3mo agoBut this does not allow tracking nor marketing, so why would they do that?
- sam_lowry_ 3mo agoBecause of Digital Sovereignty concerns?
- jesterson 3mo agoYou don't think anyone in EU bureaucracy has any concerns regarding Digital Sovereignty, do you?
- sam_lowry_ 3mo agoIf this can win elections, then why not?
- jesterson 3mo agoI doubt this can win elections. They will frame it as "child porn trafficking patriot saving act" and majority will vote in favour without reading fineprint.
- sam_lowry_ 3mo agoEver heard of Nerd vote?
- 71bw 3mo ago...how does that align with what the EU government is doing? The whole point is for you NOT to be sovereign!!!
- tzs 3mo agoIt allows the same amount of tracking and marketing that what they actually are doing allows.
- sneak 3mo agoTell me you’ve never supported a large userbase without telling me you’ve never supported a large userbase. What’s the plan for supporting the 50,000 people a day who lost their random string? What’s the plan for supporting the other 50,000 a day who pasted it into a random website? Europe has a billion people.
- sam_lowry_ 3mo agoHeh... I actually did support a rather large userbase pretty much on my own for 20 years, until I lost that business to Facebook. This can be traced in my HN history even. Anyway, the evil is in the details, and the details matter. But it's a topic for a blogpost, not a HN comment.